> Hey,
>
> my radiusd look's in /etc/passwd ,/etc/shadow for Username/Password.
>
> When i dial in with my real username plus blank's plus a string, and the
> correct password, i get full access. But with the wrong username.
>
> Example:
>
> Username in /etc/passwd: "test01"
>
> Dial in with Username: "test01 123"
>
All routines related to user id chck only eight chars. I don't know if the
spaces at the end of the username are ignored, but in your example, it is
like if the program examined test01 followed by two spaces and ignored the
spaces.
Somebody told some month ago on this list that all authentication programs
in Linux use a eight chars user id.
Norbert Crettol
-----------------------------------------------------------------
Omedia sa Av. de la Gare 38 CH1920 Martigny
-----------------------------------------------------------------
Norbert Crettol Internet services
nc@omedia.ch connexions, conseil
++41 27 722 04 50 http://www.omedia.ch creation de Web
-----------------------------------------------------------------